VendorLens

    Welcome offer: 50% off your first 3 months

    New customers only. Applied automatically at checkout.

    18d:20h:38m:59s
    See pricing

    Frequently Asked Questions

    Everything you need to know about VendorLens, vendor assessments, pricing and getting started.

    What is VendorLens?

    VendorLens does two jobs. It publishes a branded trust center where you share your security practices, certifications and documents with customers, and it runs lightweight supplier assessments (Beta) so you can send questionnaires to your own vendors, collect evidence and record a decision.

    How does VendorLens compare to Vanta or Drata?

    Unlike compliance automation platforms like Vanta or Drata that focus on internal audit workflows and are typically five figures annually, VendorLens focuses on the external-facing trust communication layer — branded trust pages, NDA workflows and document sharing — plus lightweight supplier assessments, at a fraction of the cost starting from free.

    How much does VendorLens cost?

    VendorLens offers three plans: Community (free) with 1 trust page, up to 10 documents and up to 10 suppliers; Pro ($99/month) with custom domains, custom branding and unlimited documents, suppliers and assessments; and Business ($299/month) with the same unlimited allowances plus unlimited NDA requests and priority support. SSO, public API access and advanced governance are on the roadmap and not yet available.

    Does VendorLens support NDA workflows?

    Yes. VendorLens has a built-in NDA request and approval process. Visitors can request access to NDA-protected documents, and you can approve or reject requests. The Pro and Business plans include the DocuSign and SignNow e-signature integrations.

    What kind of documents can I share?

    You can share security policies, audit reports, compliance certifications, risk assessments, data processing agreements, and any other document relevant to vendor due diligence. Documents can be set to public, NDA-protected, or private visibility.

    Can I use my own domain?

    Yes. On the Pro and Business plans you can connect a custom domain (e.g. trust.yourcompany.com) so your trust page lives on your own brand.

    What are Vendor Assessments?

    Vendor Assessments (Beta) is the buying side of VendorLens. You add a supplier, answer 6 exposure questions to get an explainable inherent-risk rating, send a recommended questionnaire pack, and the supplier answers through an expiring link with autosave and evidence upload. You then record a decision: Approved, Approved with conditions, Rejected, with rationale, residual risk and a next review date.

    Which questionnaire packs are available?

    The packs are source-controlled rather than free-text: Lightweight Core, Personal Data add-on, Critical Service add-on, Payments add-on, iGaming add-on. The Lightweight Core pack is 10–12 questions, and add-ons are recommended automatically based on the exposure answers.

    Does VendorLens answer the security questionnaires my customers send me?

    No. VendorLens sends questionnaires out to your suppliers, but it does not auto-answer inbound customer questionnaires and has no AI answer library. Publishing your documents on a trust center is what reduces how many arrive in the first place.

    Is VendorLens a full third-party risk management platform?

    No, deliberately. There is no continuous monitoring, no external security ratings, no portfolio-wide risk register and no remediation programme management. Vendor Assessments is sized for teams that need a repeatable questionnaire, evidence and a recorded decision.

    How does VendorLens handle GDPR?

    VendorLens is operated by VendorLens Technologies Ltd, registered in Cyprus (EU), and is built to support your GDPR obligations — but "GDPR compliant" is not a certification any vendor can award itself, so we describe the roles instead. For the customer content you publish and the supplier data you process in assessments, you are the Controller and we act as Processor under a Data Processing Agreement. For your own account, billing and support data we act as Controller. Our Privacy Policy sets out both roles, the sub-processors involved and the retention periods.

    Who is VendorLens for?

    VendorLens is built for startups, SMBs and small B2B teams — SaaS vendors, fintech providers, iGaming suppliers, data and AI platforms, and any organization that receives security questionnaires from customers or has to review its own suppliers.

    How do I get started?

    Sign up for a free Community account — no credit card required. You can create your first trust page, upload documents, add your first suppliers and share a public link with stakeholders. Upgrading to Pro starts a 14-day trial: a card is required for verification, but you will not be charged until the trial ends.

    Still have questions?